bluesky Unknown
First seen:
-
0
Total Victims
0
Victims (30d)
Details
BlueSky is a financially motivated ransomware group active from mid-2022 into early 2023, using multi-threaded ChaCha20/Curve25519 encryption for fast file locking on Windows hosts, with code sharing significant overlap with Conti v2/v3 and Babuk, attributed with high confidence to Russian-origin threat actors.
Leak Site
Onion URL:
http://ccpyeuptrlatb2piua4ukhnhi7lrxgerrcrj4p2b5uhbzqm2xgdjaqid.onion
Metadata
Slug:
bluesky
Created: 14/01/2026 08:19
Updated: 28/06/2026 16:02